dhltlscai5.crt: CN=DPDHL Global TLS CA - I5,O=Deutsche Post AG,C=DE (Intermediate Certificate, Expiring 2029-03-18) detail info and audit record

 

Page content

CA Certificate Information and Audit Record

This certificate is intermediate certificate used for the issuance of other certificates.

Download certificate through curl:

curl -sSL "http://secure.globalsign.com/cacert/dhltlscai5.crt" --output cert.crt

Download certificate through wget:

wget -q "http://secure.globalsign.com/cacert/dhltlscai5.crt" --output-document=cert.crt

CA Certificate Detail Information

Use openssl x509 to decode DER certificate to get detail information:

openssl x509 -in cert.crt -inform der -text -noout

Use openssl x509 to decode PEM certificate to get detail information:

openssl x509 -in cert.crt -inform pem -text -noout

Decoded detail certificate information:

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            77:bd:0d:df:63:84:ff:b1:d1:4a:3e:dd:83:83:c8:69
    Signature Algorithm: sha256WithRSAEncryption
        Issuer: OU=GlobalSign Root CA - R3, O=GlobalSign, CN=GlobalSign
        Validity
            Not Before: Jul 11 00:00:00 2020 GMT
            Not After : Mar 18 00:00:00 2029 GMT
        Subject: C=DE, O=Deutsche Post AG, CN=DPDHL Global TLS CA - I5
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                RSA Public-Key: (2048 bit)
                Modulus:
                    00:ea:fc:b3:de:f3:18:32:2e:0c:22:98:e7:85:9e:
                    ba:a9:a5:a6:ba:4a:b9:63:f7:5d:3a:dc:ef:9b:03:
                    43:e9:8b:a5:d0:15:6b:0b:fa:37:09:95:9b:4d:5e:
                    a0:1f:b9:94:2e:bd:6d:10:89:ab:78:97:1d:bf:e3:
                    10:32:40:43:fe:43:c7:a4:31:c4:9b:4d:cf:04:c4:
                    a7:b0:ff:cd:c7:fa:62:87:74:e3:c1:f0:9e:10:3a:
                    13:2f:38:f4:1b:41:ae:56:a0:8f:a5:08:b7:56:25:
                    c6:1d:62:70:1c:e7:d4:d0:59:86:7b:bc:cc:f8:a9:
                    c8:f0:eb:a2:d7:2f:6e:a8:6a:5c:e9:e3:8e:60:1a:
                    44:f0:db:1a:80:bc:fe:7b:15:f9:a5:0a:96:7d:06:
                    d5:69:a9:74:e0:58:cf:5e:5c:40:88:70:0f:8f:1d:
                    ac:d8:1e:76:d7:20:e3:75:f2:cf:93:fe:bb:67:0a:
                    d8:32:2a:b0:c7:4e:bd:8a:8a:0b:10:c1:3f:55:e1:
                    27:a1:e6:9d:54:f7:a6:66:03:ee:bc:88:ed:58:32:
                    3b:dd:75:63:ac:bd:bb:24:09:f5:96:8d:fc:7c:2d:
                    0d:9f:ca:bd:36:e7:47:68:b6:ae:74:05:4b:62:1b:
                    4e:03:12:29:b0:7d:ab:34:a2:d1:9a:3c:ca:52:35:
                    d2:d9
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            X509v3 Key Usage: critical
                Digital Signature, Certificate Sign, CRL Sign
            X509v3 Extended Key Usage: 
                TLS Web Server Authentication, TLS Web Client Authentication
            X509v3 Basic Constraints: critical
                CA:TRUE, pathlen:0
            X509v3 Subject Key Identifier: 
                EF:5B:F4:4B:86:F9:D6:F9:3A:53:89:09:BC:20:8E:BC:1A:CA:22:60
            X509v3 Authority Key Identifier: 
                keyid:8F:F0:4B:7F:A8:2E:45:24:AE:4D:50:FA:63:9A:8B:DE:E2:DD:1B:BC

            Authority Information Access: 
                OCSP - URI:http://ocsp.globalsign.com/rootr3
                CA Issuers - URI:http://secure.globalsign.com/cacert/root-r3.crt

            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://crl.globalsign.com/root-r3.crl

            X509v3 Certificate Policies: 
                Policy: 2.23.140.1.2.2
                Policy: 1.3.6.1.4.1.4146.1.20
                  CPS: https://www.globalsign.com/repository/

    Signature Algorithm: sha256WithRSAEncryption
         c1:a1:97:d5:6f:0f:85:52:0c:47:05:71:12:37:51:8a:9e:2f:
         6f:95:14:c3:d4:65:15:9e:ea:7a:3f:7f:8a:bc:e9:14:67:68:
         6b:ee:98:a9:1a:43:73:59:31:a5:1c:71:f4:23:b3:13:79:b7:
         41:5c:98:c3:85:df:1c:89:27:24:23:6a:09:f0:1d:17:38:2d:
         93:50:dd:45:10:8e:e0:f5:77:0c:61:ea:bb:c3:50:3d:69:ef:
         bf:1e:a4:c3:c6:be:b4:9b:38:12:88:9f:d7:41:0d:d6:1c:38:
         24:41:3e:ef:5d:3a:ba:97:51:6c:f2:09:cf:74:44:ae:d7:3f:
         de:27:9e:d4:11:da:2b:88:62:57:da:ce:33:92:ec:27:4a:96:
         45:75:c0:56:39:a7:b6:72:d5:75:34:7c:d3:95:05:9c:8d:4a:
         89:20:94:47:3e:49:4d:22:2e:62:1b:6c:76:5a:3e:88:ae:75:
         59:7c:58:7d:a1:0e:07:45:ef:c0:8c:69:27:63:ea:df:95:4d:
         85:e8:7f:c2:16:ce:23:9b:d4:01:5c:d7:63:d6:95:94:e7:57:
         11:37:21:17:2e:14:a2:96:0e:66:12:84:6e:28:35:a1:e5:57:
         6a:f3:68:aa:63:1c:47:21:0b:68:fb:aa:d7:fc:78:ef:ff:30:
         4f:4c:f1:20

CA Certificate in PEM Format

Use openssl x509 to convert certificate from DER format to PEM format:

openssl x509 -in cert.crt -inform der

Converted PEM format certificate:

-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----

Decode PEM Certificate online

Download PEM Certificate

Also see Top 1 Millions Domains CA Certificate List


Page version: e13a7e3f2 2023-05-06